Proof of pre-consent firing, not just a banner that should block
A CMP is configured to block tags until consent. CookieSentry independently verifies whether that actually happened: it visits your live URL as a fresh visitor and records every cookie and tracker that fires before any consent is given, naming each source. That gap between configured intent and real behaviour is exactly what a German state DPA inspects, and it is something the banner that created the configuration cannot impartially prove about itself.